Multiple unquoted Windows search path vulnerabilities in the (1) Manager and (2) Agent components in Symantec Enterprise Security Manager (ESM) before 11.0 allow local users to gain privileges via unspecified vectors.
2012-12-18T20:55:01.260
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | symantec | enterprise_security_manager | ≤ 10.0 | Yes |
Application | symantec | enterprise_security_manager | 6.0 | Yes |
Application | symantec | enterprise_security_manager | 6.5 | Yes |
Application | symantec | enterprise_security_manager | 6.5.0 | Yes |
Application | symantec | enterprise_security_manager | 6.5.1 | Yes |
Application | symantec | enterprise_security_manager | 6.5.2 | Yes |
Application | symantec | enterprise_security_manager | 6.5.3 | Yes |
Application | symantec | enterprise_security_manager | 9.0 | Yes |
Application | symantec | enterprise_security_manager | 9.0.1 | Yes |